Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2026-15028

Опубликовано: 08 июл. 2026
Источник: redhat
CVSS3: 3.9
EPSS Низкий

Описание

A flaw was found in libarchive. This vulnerability allows a remote attacker to trigger a heap overflow by providing a specially crafted tar archive. The issue occurs during the parsing of a PAX extended header containing a malformed SUN.holesdata sparse-file attribute. Successful exploitation could lead to a denial of service, making the system unavailable, or potentially allow for arbitrary code execution, giving the attacker control over the affected system.

Отчет

Conditions for Exploitation: Successful exploitation requires user interaction or a specific application workflow. An attacker cannot trigger this flaw entirely on their own remotely; they must supply a specially crafted tar archive and rely on a user or an automated system (such as an antivirus scanner or file extraction tool) to actively parse it using the libarchive library. Impact Limitations: Although the heap overflow has the potential to allow for arbitrary code execution, achieving this reliably is typically complex and highly dependent on the memory layout and protections of the specific application utilizing the library. In most common scenarios, the malformed archive will simply cause the parsing application to crash, resulting in a localized Denial of Service (DoS) rather than a full system compromise.

Меры по смягчению последствий

To mitigate this issue, avoid processing untrusted or unverified tar archives. Users should exercise caution when handling archives from unknown sources or those with unexpected content, as processing a specially crafted archive could trigger the vulnerability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 10libarchiveAffected
Red Hat Enterprise Linux 6libarchiveOut of support scope
Red Hat Enterprise Linux 7libarchiveOut of support scope
Red Hat Enterprise Linux 8libarchiveAffected
Red Hat Enterprise Linux 9libarchiveFix deferred
Red Hat OpenShift Container Platform 4rhcosFix deferred
Red Hat Hardened Imageslibarchive-main-3.8.8-2.1.hum1FixedRHSA-2026:3827912.07.2026

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=2497970libarchive: heap overflow OOB read while parsing a tar archive contains a PAX extended header

EPSS

Процентиль: 10%
0.00203
Низкий

3.9 Low

CVSS3

Связанные уязвимости

CVSS3: 3.9
ubuntu
около 1 месяца назад

A flaw was found in libarchive. This vulnerability allows a remote attacker to trigger a heap overflow by providing a specially crafted tar archive. The issue occurs during the parsing of a PAX extended header containing a malformed SUN.holesdata sparse-file attribute. Successful exploitation could lead to a denial of service, making the system unavailable, or potentially allow for arbitrary code execution, giving the attacker control over the affected system.

CVSS3: 3.9
nvd
около 1 месяца назад

A flaw was found in libarchive. This vulnerability allows a remote attacker to trigger a heap overflow by providing a specially crafted tar archive. The issue occurs during the parsing of a PAX extended header containing a malformed SUN.holesdata sparse-file attribute. Successful exploitation could lead to a denial of service, making the system unavailable, or potentially allow for arbitrary code execution, giving the attacker control over the affected system.

CVSS3: 3.9
msrc
20 дней назад

Libarchive: heap overflow oob read while parsing a tar archive contains a pax extended header

CVSS3: 3.9
debian
около 1 месяца назад

A flaw was found in libarchive. This vulnerability allows a remote att ...

CVSS3: 3.9
github
около 1 месяца назад

A flaw was found in libarchive. This vulnerability allows a remote attacker to trigger a heap overflow by providing a specially crafted tar archive. The issue occurs during the parsing of a PAX extended header containing a malformed SUN.holesdata sparse-file attribute. Successful exploitation could lead to a denial of service, making the system unavailable, or potentially allow for arbitrary code execution, giving the attacker control over the affected system.

EPSS

Процентиль: 10%
0.00203
Низкий

3.9 Low

CVSS3